If this is your first visit, be sure to
check out the Forum Rules by clicking the
link above. You may have to register
before you can post: click the register link above to proceed. To start viewing messages,
select the forum that you want to visit from the selection below.

Medusa / Hydra / John the Ripper

I would like to know how these programs work, because I try them I always get succeeded, even if I input a wrong password. Do I get the mode wrong? I also want to use John to generate passwords Medusa or Hydra can use and then throw them away (so I won't need a big wordlist) but I don't know how to. Can someone help me?

I would like to know how these programs work, because I try them I always get succeeded, even if I input a wrong password. Do I get the mode wrong?

hydra has sometimes problems with the protocol via the network. For example telnet is often interpreted a bit false and so you will get lots of false positives, frame based auth also often has some troubles with it you have to try it yourself to find your best practice!

I have never ever any fals pos with john ... explain a bit more what you are doing ...

thanks barbsie xargs is really handy it didn't work well with medusa, but I can use it for allot of other things now that I know about it
xargs does work
I used
perl scripts/2wiregen.perl | xargs -L 1 medusa -h 192.168.1.254 -u "" -M web-form -p
the -L 1 runs the command for every line outputted from the script
it works but runs incredible slow so not really worth bothering with...

using xargs with hydra is slow as snot, and probably about the equivalent of just typing the command out for every password in your dictionary as I pointed out in that post.... you should try it. I have a slow computer you might get better results.

it works but runs incredible slow so not really worth bothering with...

using xargs with hydra is slow as snot, and probably about the equivalent of just typing the command out for every password in your dictionary as I pointed out in that post.... you should try it. I have a slow computer you might get better results.

The reason I asked you was because in the first response you made, you stated that it did not work. But in the thread I link you posted that it would work but was only slow. But at least we do have some info regarding the question on it.
Cheers